802.1x maschine auth with SSL?

2008-03-25 Thread [EMAIL PROTECTED]
Heya, i'm a bit stuck. My xp box should auth with ssl cert - works ok so far. But how to assign vlan? When doing this with user, i put my user + pass into users file - works. But for ssl cert? I want my xp box authentificated by ssl cert and after that, my user should logon to his vlan. So that i

Re: 802.1x maschine auth with SSL?

2008-03-25 Thread Donny Jekels
if I understand you correctly you wanna do this enable EAP on your Cisco switch; where all ports are in shutdown mode. a user on your XP box has a User Cert which is passed through EAP to your Freeradius box; the freeradius authenticates the user with his certificate DN etc. then instructes the

Re: 802.1x maschine auth with SSL?

2008-03-25 Thread A . L . M . Buxey
hi, you wouldnt be able to have the post in shutdown mode - or EAP would never be undertaken. you need to configure the cisco switch so that it does 802.1x authentication (see cisco docs on how to configure the switch for 802.1x and for RADIUS) then you simply configure FreeRADIUS to send back

Re: 802.1x maschine auth with SSL?

2008-03-25 Thread [EMAIL PROTECTED]
Hi, thanks for replys! i'm very sorry, there is a little missunderstanding :( Switch works ok so far, so nothing needs to be done there. My client is xp box with logon client which can do maschine auth and prompt the user for his name and pass... So i use ssl to auth the maschine (has a general

Re: 802.1x maschine auth with SSL?

2008-03-25 Thread Donny Jekels
alan, thank, was trying to follow mr hot pants' grammar. On Tue, Mar 25, 2008 at 10:18 AM, [EMAIL PROTECTED] wrote: hi, you wouldnt be able to have the post in shutdown mode - or EAP would never be undertaken. you need to configure the cisco switch so that it does 802.1x authentication

Re: 802.1x maschine auth with SSL?

2008-03-25 Thread A . L . M . Buxey
Hi, i'm very sorry, there is a little missunderstanding :( Switch works ok so far, so nothing needs to be done there. My client is xp box with logon client which can do maschine auth and prompt the user for his name and pass... So i use ssl to auth the maschine (has a general cert like